A vulnerability (CVE-2025-31334) in WinRAR allows bypassing Windows’ Mark of the Web security, enabling arbitrary code execution. Affecting versions prior to 7.11, it scores 6.8 on CVSS. Users should upgrade to the latest version, restrict symbolic link creation, and avoid opening suspicious archives. Prompt patching is essential to mitigate risk from potential exploitation.

74% of companies admit insecure code caused a security breach
A large number of data breaches are linked to insecure code, prompting calls for better training